Format: 1.8 Date: Tue, 07 Feb 2023 14:57:10 +0100 Source: postgresql-15 Binary: libecpg-compat3 libecpg-dev libecpg6 libpgtypes3 libpq-dev libpq5 postgresql-15 postgresql-client-15 postgresql-doc-15 postgresql-plperl-15 postgresql-plpython3-15 postgresql-pltcl-15 postgresql-server-dev-15 Built-For-Profiles: noudeb Architecture: amd64 amd64_translations all Version: 15.2-1 Distribution: lunar-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Christoph Berg Description: libecpg-compat3 - older version of run-time library for ECPG programs libecpg-dev - development files for ECPG (Embedded PostgreSQL for C) libecpg6 - run-time library for ECPG programs libpgtypes3 - shared library libpgtypes for PostgreSQL 15 libpq-dev - header files for libpq5 (PostgreSQL library) libpq5 - PostgreSQL C client library postgresql-15 - The World's Most Advanced Open Source Relational Database postgresql-client-15 - front-end programs for PostgreSQL 15 postgresql-doc-15 - documentation for the PostgreSQL database management system postgresql-plperl-15 - PL/Perl procedural language for PostgreSQL 15 postgresql-plpython3-15 - PL/Python 3 procedural language for PostgreSQL 15 postgresql-pltcl-15 - PL/Tcl procedural language for PostgreSQL 15 postgresql-server-dev-15 - development files for PostgreSQL 15 server-side programming Changes: postgresql-15 (15.2-1) unstable; urgency=medium . * New upstream version. . + libpq can leak memory contents after GSSAPI transport encryption initiation fails (Jacob Champion) . A modified server, or an unauthenticated man-in-the-middle, can send a not-zero-terminated error message during setup of GSSAPI (Kerberos) transport encryption. libpq will then copy that string, as well as following bytes in application memory up to the next zero byte, to its error report. Depending on what the calling application does with the error report, this could result in disclosure of application memory contents. There is also a small probability of a crash due to reading beyond the end of memory. Fix by properly zero-terminating the server message. (CVE-2022-41862) Checksums-Sha1: 01a6aa23883efb62432795dd30fe8bdc0ecc1f3b 34758 libecpg-compat3-dbgsym_15.2-1_amd64.ddeb 2f0370f687bcdb9d2f5b4e2e29747473d4532348 17886 libecpg-compat3_15.2-1_amd64.deb 71b1442207e9d93b6de3ea4bb280bed9e8e47cbd 272212 libecpg-dev-dbgsym_15.2-1_amd64.ddeb 95dff1f4bd6f2044cb13ccd3212b8ae3af642b2e 262592 libecpg-dev_15.2-1_amd64.deb 41e57770e7c492655bd379ef244aa15e02b09853 119196 libecpg6-dbgsym_15.2-1_amd64.ddeb 356bcbbed8d63c37763e1b651c429bc440459374 43988 libecpg6_15.2-1_amd64.deb 7473cc93c499fba65239e3ff00d00198d53af863 87532 libpgtypes3-dbgsym_15.2-1_amd64.ddeb 759557e6720c5fcdad3ca7bcd89546954d1824c1 40480 libpgtypes3_15.2-1_amd64.deb ca1c45b4528959a60458b635a7a8329ed4f099eb 149370 libpq-dev_15.2-1_amd64.deb ed2dc4a9c4ec9e8c34b758c92bac0b4541a7d33f 300226 libpq5-dbgsym_15.2-1_amd64.ddeb 570b0dc71de343bc0719711b6fccdfcce74182ba 134362 libpq5_15.2-1_amd64.deb 07b6f0e6528be946ad7ff007584ccd10d8bf71d0 18267822 postgresql-15-dbgsym_15.2-1_amd64.ddeb f77c847811defce3f88a0514490446015b821a22 16619 postgresql-15_15.2-1_amd64.buildinfo a6c75719659bf3d3995982d73e28a1555c32193f 16393150 postgresql-15_15.2-1_amd64.deb a69beebd11e1bf970ce11289920b39dc99e61f30 9018413 postgresql-15_15.2-1_amd64_translations.tar.gz 7e1e63aee7fb74d2fbc5c5cb00ac258d19021538 1942070 postgresql-client-15-dbgsym_15.2-1_amd64.ddeb d83dc236dbe7929350178091538922f942a8866a 1248202 postgresql-client-15_15.2-1_amd64.deb e7e8db589e4063575ed0ec84859b65c40cfa7758 2015146 postgresql-doc-15_15.2-1_all.deb 74e4cde730a89684585cbbfbe34aeeaf8fa75afd 182610 postgresql-plperl-15-dbgsym_15.2-1_amd64.ddeb b5af51c20592e875b2c2cf1ae394712dfc4b3007 70206 postgresql-plperl-15_15.2-1_amd64.deb 55522528a55116b9fa47db4224df52dab4179d00 167502 postgresql-plpython3-15-dbgsym_15.2-1_amd64.ddeb 277ddfab3dfd909e37b647fe8588344c0b5ee31f 76054 postgresql-plpython3-15_15.2-1_amd64.deb 0cbfe9082bd3d30ad8fcc969362999a318f8c4c1 80618 postgresql-pltcl-15-dbgsym_15.2-1_amd64.ddeb f3b32111a64ab002cb539d30905d8d9ee57ba78c 28580 postgresql-pltcl-15_15.2-1_amd64.deb 8382d76cc47ba48d5ae95f0a8dd8588a0733608c 1193844 postgresql-server-dev-15_15.2-1_amd64.deb Checksums-Sha256: 324a04bc6bde4e705016bd6835fcba428a715bc12f330ca5d2ba1abf3f23fcb7 34758 libecpg-compat3-dbgsym_15.2-1_amd64.ddeb 72b6a93679da3e2128fbcb94ca2af1786e5e3c2bca3d8e7e09fae269b2fdf617 17886 libecpg-compat3_15.2-1_amd64.deb 2cb5f577948c713f8f4976f48b28b18544a8e3d53d6498d769d8032e83ce6bab 272212 libecpg-dev-dbgsym_15.2-1_amd64.ddeb 132344b530873b3a978f5c2dd0598e65d1003710058b9b83bb52cf916a75371b 262592 libecpg-dev_15.2-1_amd64.deb c2814e623adbd203015a7cd18133e26d968c37272b0f9641d5214fc337063a65 119196 libecpg6-dbgsym_15.2-1_amd64.ddeb b0596084f200e4a1f680686c0c2837e991e4bc607afb8cdfffd3adcc6a4243a9 43988 libecpg6_15.2-1_amd64.deb 8ad89ac5ead72d1cd631813efb724fdeb8e8c79bed2a4fc803ba049fc0559827 87532 libpgtypes3-dbgsym_15.2-1_amd64.ddeb 33c72495e0450b49a01f0e719c79a9d35e7d099c1a07fcf58498fa8e59b28aaf 40480 libpgtypes3_15.2-1_amd64.deb b43aa43dba511ce821416d78e49d4bdc62703355125acd048e5dd88e21cc25cf 149370 libpq-dev_15.2-1_amd64.deb 0a47bf06dc04aa45eec988b1d29412c41327525496abe4f68ae45f7c33f88898 300226 libpq5-dbgsym_15.2-1_amd64.ddeb 8c03b7e70e99f6436c14013615c7b621819fa5d4838f23d29a4b69cd85a48503 134362 libpq5_15.2-1_amd64.deb 95ed3d05d6fc565f21f36fba42aaee7fb216e8a919abae1f5527ecea32f65f73 18267822 postgresql-15-dbgsym_15.2-1_amd64.ddeb 8e2f2f91c212d9f0b163c709be5f10e702656035171ef4d52f1885461c57c240 16619 postgresql-15_15.2-1_amd64.buildinfo 91410a1c2e62b1f330bdf473ed9b539b523420530aac8d4832e5a3f02192a749 16393150 postgresql-15_15.2-1_amd64.deb 26d990b945fbe3c6db96cf5fa9bfa3b84ebc47d3415160e860e849e1f11be7b1 9018413 postgresql-15_15.2-1_amd64_translations.tar.gz 0a6653ccd6bfdabdef7689d9bc1c8587953518e3ed8ec831867bbe9fe212076e 1942070 postgresql-client-15-dbgsym_15.2-1_amd64.ddeb 9aa98800b7c9f7f524e68cd274f5caad58d9215bbdefe9823f2baf299260f204 1248202 postgresql-client-15_15.2-1_amd64.deb 5a57b55ed2922a46f5b6b4f749dfc3da47df0a534c656b03b0570fa3d10ebf15 2015146 postgresql-doc-15_15.2-1_all.deb 8bd62df5738c0973e625553533271605e318d7a146e7d2b24454323953de7878 182610 postgresql-plperl-15-dbgsym_15.2-1_amd64.ddeb 775956f6641db230ee59116e6b62cd1f1335d30129e6e546c597a96ad0dcab39 70206 postgresql-plperl-15_15.2-1_amd64.deb 63213cce5c8f8a7c507571cee6fd46e784750606bd392997853001bbea045085 167502 postgresql-plpython3-15-dbgsym_15.2-1_amd64.ddeb d4944672d8ae83c16141048f14edf0778fc9e1e8020ccf56573d2441d9cdbbc8 76054 postgresql-plpython3-15_15.2-1_amd64.deb fd3901b08b09b69e118113be1f516bb6432b18b7081d60ec8296d204aa097975 80618 postgresql-pltcl-15-dbgsym_15.2-1_amd64.ddeb d1cf3bee4257a489bd522db9082ef46c5b72c83b7552a141212cedfdd58dd287 28580 postgresql-pltcl-15_15.2-1_amd64.deb a6bfe02ee560f0751591435401711d8910f5bdde56c36c5148d796f2069fc577 1193844 postgresql-server-dev-15_15.2-1_amd64.deb Files: 675c4c7d07f945a49c9c807eb40e7318 34758 debug optional libecpg-compat3-dbgsym_15.2-1_amd64.ddeb 4b3e4e3c22915a54137104d2f3085c4f 17886 libs optional libecpg-compat3_15.2-1_amd64.deb b6fc34cd4c1f1f48023b4e6a639f0cca 272212 debug optional libecpg-dev-dbgsym_15.2-1_amd64.ddeb 5d9fe97fcdd5a504e934ba5187048c8d 262592 libdevel optional libecpg-dev_15.2-1_amd64.deb 85b563a8cfa4fbb8c3c54484a7529d09 119196 debug optional libecpg6-dbgsym_15.2-1_amd64.ddeb aa98c9df6b749c667a74a56d693102c1 43988 libs optional libecpg6_15.2-1_amd64.deb a2eb22737be275671aa992d3fef6124a 87532 debug optional libpgtypes3-dbgsym_15.2-1_amd64.ddeb 46fe5ef6c266a391e890b2ab0df460d8 40480 libs optional libpgtypes3_15.2-1_amd64.deb 23e8c98916d516acac3a046a087ed3ac 149370 libdevel optional libpq-dev_15.2-1_amd64.deb 23555bd7921fc45a21ed13d55682dcd4 300226 debug optional libpq5-dbgsym_15.2-1_amd64.ddeb 677ff7d869a44d8f0b8f895b96d1a27e 134362 libs optional libpq5_15.2-1_amd64.deb 08736d18a16fcf66e6cfff81d29ce5fb 18267822 debug optional postgresql-15-dbgsym_15.2-1_amd64.ddeb 87c79ed77f5b37a908a63a128b943f6f 16619 database optional postgresql-15_15.2-1_amd64.buildinfo dad0bd1b4e46e93a6a406da70ed74ad7 16393150 database optional postgresql-15_15.2-1_amd64.deb d8776143e54766786f90f3623c806598 9018413 raw-translations - postgresql-15_15.2-1_amd64_translations.tar.gz be8bf120635783707bcc3b350f5353eb 1942070 debug optional postgresql-client-15-dbgsym_15.2-1_amd64.ddeb 650074f1c0fc2e4ed1202cdbb5e3d81c 1248202 database optional postgresql-client-15_15.2-1_amd64.deb fb0e69d575ccde9f949f792612a920b9 2015146 doc optional postgresql-doc-15_15.2-1_all.deb 754d279683b78ee895a686d3ebfa25d4 182610 debug optional postgresql-plperl-15-dbgsym_15.2-1_amd64.ddeb ae2463b24042d4be84e0126b7e771d7e 70206 database optional postgresql-plperl-15_15.2-1_amd64.deb 7200ec34394b018834c0826ff4650129 167502 debug optional postgresql-plpython3-15-dbgsym_15.2-1_amd64.ddeb 4b29c549faa93559febc3763f8e5ac95 76054 database optional postgresql-plpython3-15_15.2-1_amd64.deb 023c7ffbe076b1316be7217eb2aaa0c1 80618 debug optional postgresql-pltcl-15-dbgsym_15.2-1_amd64.ddeb 8834931c065b669d99d0e528fe043266 28580 database optional postgresql-pltcl-15_15.2-1_amd64.deb 753f886c8d858020a3a5ce21c9523535 1193844 libdevel optional postgresql-server-dev-15_15.2-1_amd64.deb